NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.

Forum Discussion

rogerp's avatar
rogerp
Aspirant
Oct 07, 2018

Enabling Weighted Load Balancing Dual WAN, incoming forwarding breaks

We have a working SRX5308 with a single WAN (WAN1) and incoming port forwarding working for several services (HTTP, SMTP, etc.)

 

When I connect a second WAN (WAN2), and then enable Weighted Load Balancing, incoming port forwarded traffic via WAN1 to the destination servers no longer works.

 

For example. we have port forwarding on WAN1 to a web server.  We enable load balancing including WAN2, we can no longer connect to that server from the outside.

 

Any ideas why enabling load balancing would seem to break incoming port forwarded traffic on WAN1?

3 Replies

  • DaneA's avatar
    DaneA
    NETGEAR Employee Retired

    Hi rogerp,

     

    Since you have configured Load Balancing, I suggest you to configure Protocol Binding as well.  Kindly read pages 41 - 44 of the SRX5308 reference manual here about Load Balancing Mode and Protocol Binding. 

     

     

    Regards,

     

    DaneA

    NETGEAR Community Team

    • rogerp's avatar
      rogerp
      Aspirant

      Protocol Binding is used to bind *outgoing* traffic to a particular WAN interface.  My problem has to do with incoming traffic.

       

      Unless what you're suggesting is that (eg. HTTP) traffic coming in on WAN1, is port forwarded to a particular server, and a protocol bind is necessary to guarantee that server's responding outgoing HTTP traffic heads back out through the same WAN.  But shouldn't traffic normally always return on the WAN interface it comes in on?

      • DaneA's avatar
        DaneA
        NETGEAR Employee Retired

        rogerp,

         

        Kindly double check the inbound firewall rule/s configured in order to ensure that the incoming service is still sent to the correct LAN server. If ever the inbound rule/s is still set correctly, then configure protocol binding as a test to see if it works.

         

         

        Regards,

         

        DaneA

        NETGEAR Community Team

NETGEAR Academy

Boost your skills with the Netgear Academy - Get trained, certified and stay ahead with the latest Netgear technology! 

Join Us!

ProSupport for Business

Comprehensive support plans for maximum network uptime and business peace of mind.

 

Learn More